WO2018079960A1 - Dispositif de mémorisation comprenant un secteur de démarrage dans lequel seul un propriétaire peut enregistrer - Google Patents
Dispositif de mémorisation comprenant un secteur de démarrage dans lequel seul un propriétaire peut enregistrer Download PDFInfo
- Publication number
- WO2018079960A1 WO2018079960A1 PCT/KR2017/004410 KR2017004410W WO2018079960A1 WO 2018079960 A1 WO2018079960 A1 WO 2018079960A1 KR 2017004410 W KR2017004410 W KR 2017004410W WO 2018079960 A1 WO2018079960 A1 WO 2018079960A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- flash memory
- public key
- boot
- owner
- storage device
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Images
Classifications
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/575—Secure boot
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F12/00—Accessing, addressing or allocating within memory systems or architectures
- G06F12/02—Addressing or allocation; Relocation
- G06F12/0223—User address space allocation, e.g. contiguous or non contiguous base addressing
- G06F12/023—Free address space management
- G06F12/0238—Memory management in non-volatile memory, e.g. resistive RAM or ferroelectric memory
- G06F12/0246—Memory management in non-volatile memory, e.g. resistive RAM or ferroelectric memory in block erasable memory, e.g. flash memory
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F12/00—Accessing, addressing or allocating within memory systems or architectures
- G06F12/14—Protection against unauthorised use of memory or access to memory
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F12/00—Accessing, addressing or allocating within memory systems or architectures
- G06F12/14—Protection against unauthorised use of memory or access to memory
- G06F12/1408—Protection against unauthorised use of memory or access to memory by using cryptography
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F12/00—Accessing, addressing or allocating within memory systems or architectures
- G06F12/14—Protection against unauthorised use of memory or access to memory
- G06F12/1458—Protection against unauthorised use of memory or access to memory by checking the subject access rights
- G06F12/1466—Key-lock mechanism
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/50—Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
- G06F21/57—Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
- G06F21/572—Secure firmware programming, e.g. of basic input output system [BIOS]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2212/00—Indexing scheme relating to accessing, addressing or allocation within memory systems or architectures
- G06F2212/10—Providing a specific technical effect
- G06F2212/1052—Security improvement
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2212/00—Indexing scheme relating to accessing, addressing or allocation within memory systems or architectures
- G06F2212/20—Employing a main memory using a specific memory technology
- G06F2212/202—Non-volatile memory
- G06F2212/2022—Flash memory
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2212/00—Indexing scheme relating to accessing, addressing or allocation within memory systems or architectures
- G06F2212/72—Details relating to flash memory management
- G06F2212/7208—Multiple device management, e.g. distributing data over multiple flash devices
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F2221/00—Indexing scheme relating to security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F2221/03—Indexing scheme relating to G06F21/50, monitoring users, programs or devices to maintain the integrity of platforms
- G06F2221/033—Test or assess software
Definitions
- the present invention relates to the security of a device, and more particularly, to a storage device including a boot area of a device that can improve the security of the device that can be easily exposed to any manipulation or external attack.
- firmware is the middle of software and hardware, it can be said that the hardware is software.
- firmware is a high-precision, basic program or data stored in a ROM to improve system efficiency. In a microcomputer, almost all programs are stored in a ROM. It may also refer to.
- Firmware can replace some of the hardware's functionality with software and is used in many electronic devices because it is very simple and can control or improve the functionality of the device at a fraction of the cost.
- the firmware since the firmware has a software characteristic, it is subject to hacking or forgery, and thus a method of verifying the firmware with integrity has been developed.
- the device includes a processing module and a memory module, wherein the memory module includes a ROM in which the platform boot firmware is stored, and the processing module may load the platform boot firmware when the device is activated.
- the platform boot firmware causes the processing module to load and verify the signature of the hash table loaded from the platform boot firmware and to load the trusted program file first.
- the processing module then loads the other files from the platform boot firmware, calculates a hash for each file, and verifies whether a hash corresponding to each program file exists in the hash table.
- Program files with hashes in the hash table may be allowed to run. If no hash corresponding to the loaded program file exists in the hash table, the processing module may prevent the device from being compromised by performing platform specific security actions.
- the present invention provides a storage device capable of protecting a boot area and a boot process by implementing a security function even without a security module coupled in hardware.
- the present invention includes a boot area that can be recorded only by the owner, and provides a storage device in which only the owner can manage the boot file.
- a storage device including a boot area that can be written only by the owner is a controller for controlling read and write, the first device for storing a file for booting A flash memory, and a second flash memory for storing data other than a boot file, wherein the controller reads data recorded in a security unit, a first flash memory, and a second flash memory for storing a public key of the owner; And a first recording unit for recording only the boot file verified by the public key stored in the security unit in the first flash memory, and a second recording unit for recording in the second flash memory.
- the first flash memory is a part for storing a boot file, and may include a file or data necessary for booting an electronic device.
- the boot file may be general boot data, boot firmware, or the like.
- the boot file may be stored in an encrypted image form.
- a process of verifying or decrypting a signature may be omitted once stored, but in the case of an encrypted image, a public or symmetric key selected by a manufacturer or a carrier or a device administrator may be used. Decryption may be performed at each boot.
- the second flash memory is generally a memory that can be read and written.
- the second flash memory may record an executable file, a system file, a document file, a media file, and the like through a second recording unit of the controller.
- first flash memory and the second flash memory will be described separately, but the first flash memory and the second flash memory may correspond to the case where the first flash memory and the second flash memory are separated only by software.
- first recording unit and the second recording unit may also exist separately, but the present invention is not limited thereto, and one recording unit separately manages the first flash memory and the second flash memory.
- the security unit of the controller may store only one public key, and when there is a stored public key, addition of a new public key and deletion of an already stored public key may be restricted so that only one public key may be stored.
- the stored public key may be restricted to be deleted only by using a corresponding secret key.
- the storage device of the present invention may be used as a storage device usable with COTS hardware, and may be an embedded multi media card (eMMC), microSD, USB storage device, solid state drive (SSD), or hard disk drive (HDD). .
- eMMC embedded multi media card
- microSD microSD
- USB storage device solid state drive
- SSD solid state drive
- HDD hard disk drive
- Owner in the present specification is a person who has the right to drive the device or the storage device is used to update the firmware, the manufacturer of the device or a person authorized to manage the firmware, etc. from the manufacturer,
- the device can be purchased from the manufacturer or supplied with the device.
- the security unit may be provided in an empty state, and the owner may store the public key corresponding to his secret key through the predetermined reader in the security unit.
- the storage device of the present invention does not have a security module hardware-coupled to the electronic device, a function corresponding to the security module can be added to the controller of the storage device to protect the boot area and the booting process of the device.
- the storage device of the present invention provides a boot area that can be recorded only by the owner, so that only the owner can manage the boot file and can protect a device from random manipulation or hacking by a third party.
- the owner of the boot area can manage the COTS hardware that supports the micro SD card, etc. as a storage device for booting, so that a security module combined with hardware can be implemented. In this way, security can be secured against hacking from the outside.
- FIG. 1 is a view for explaining a storage device according to an embodiment of the present invention.
- FIG. 2 is a diagram for describing the controller of FIG. 1 in detail.
- Figure 1 is a view for explaining a storage device according to an embodiment of the present invention
- Figure 2 is a view for explaining the controller of Figure 1 in detail.
- the storage device 100 may provide a booting function such as an embedded multi media card (eMMC), a microSD, a USB storage device, a solid state drive (SSD), or a hard disk drive (HDD). It can be described including all storage devices. Although the present embodiment will be described based on the micro SD card, those skilled in the art can apply the structure of the storage device having a similar function in other embodiments based on the following description.
- eMMC embedded multi media card
- microSD microSD
- USB storage device a solid state drive
- HDD hard disk drive
- the storage device 100 of the present embodiment includes a controller 110, a first flash memory 120, and a second flash memory 130, and the controller 110 includes a reader unit 112, a security unit 114, The first recording unit 116 and the second recording unit 118 may be included.
- the controller 110 is to control reading and writing to the flash memory of the same storage device, and may receive data from a mounted device (not shown) or transmit necessary data.
- the controller 110 may transmit and receive data stored in the flash memory as it is, and may transmit and receive data through a constant conversion or processing.
- the security unit 114 of the controller 110 may store the owner's public key. In manufacturing, the security unit 114 may be provided without storing any unique key, and through a separate reader, an owner may store a public key corresponding to a secret key possessed by the desired reader.
- the security unit 114 may store only one public key, and once the public key is stored, a third party who is not an owner may limit the deletion or replacement of the public key. It is preferable to delete only by using a secret key of, and it is possible to allow a newly added public key to be added in a deleted state.
- the first recording unit 116 may be provided separately from the second recording unit 118, and the signature is verified using the stored public key before storing the boot file in the first flash memory 120, and the verified boot Only the use file may be stored in the first flash memory 120.
- the file that cannot be verified cannot be written to the boot area, that is, the first flash memory 120, so that only the file that the owner intends to write can be written to the boot area.
- the second flash memory 130 may also allow or restrict writing depending on the setting.
- the reader unit 112 may read data recorded in the first flash memory 120 and the second flash memory 130, and in this case, signature verification of the public key may not be required.
- the first flash memory 120 may store only the file verified by the security unit 114, and the second flash memory 130 may be stored without verification unlike the first flash memory 120. Do.
- the boot file stored in the first flash memory 120 may be general boot data, boot firmware, or the like.
- the boot file may be stored in an encrypted image form. Therefore, in the case of a general boot file or firmware, a process of verifying or decrypting a signature may be omitted once stored, but in the case of an encrypted image, a public or symmetric key selected by a manufacturer or a carrier or a device administrator may be used. Decryption may be performed at each boot.
- the second flash memory 130 is a memory which can generally be read and written, and can record an execution file, a system file, a document file, a media file, etc. through the second recording unit of the controller.
Landscapes
- Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- General Engineering & Computer Science (AREA)
- Physics & Mathematics (AREA)
- General Physics & Mathematics (AREA)
- Computer Hardware Design (AREA)
- Software Systems (AREA)
- Storage Device Security (AREA)
- Stored Programmes (AREA)
Abstract
L'invention concerne un dispositif de mémorisation comprenant un secteur de démarrage dans lequel seul un propriétaire peut enregistrer comprenant : un dispositif de commande permettant de commander la lecture et l'écriture ; une première mémoire flash permettant de mémoriser un fichier de démarrage ; et une seconde mémoire flash permettant de mémoriser des données à l'exclusion d'un fichier de démarrage, le dispositif de commande comprenant : une unité de sécurité permettant de mémoriser une clé publique du propriétaire ; une unité de lecture permettant de lire des données enregistrées dans la première mémoire flash et la seconde mémoire flash ; une première unité d'enregistrement permettant d'enregistrer, dans la première mémoire flash, uniquement le fichier de démarrage vérifié au moyen de la clé publique mémorisée dans l'unité de sécurité ; et une seconde unité d'enregistrement permettant l'enregistrement dans la seconde mémoire flash.
Priority Applications (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US16/344,895 US20190258589A1 (en) | 2016-10-25 | 2017-04-26 | Storage device including only owner-writable boot area |
| CN201780065569.8A CN109863480B (zh) | 2016-10-25 | 2017-04-26 | 包括只能由所有者记录的引导区的存储器 |
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| KR10-2016-0139524 | 2016-10-25 | ||
| KR1020160139524A KR101886176B1 (ko) | 2016-10-25 | 2016-10-25 | 소유자만 기록 가능한 부트영역을 포함하는 저장장치 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2018079960A1 true WO2018079960A1 (fr) | 2018-05-03 |
Family
ID=62023732
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/KR2017/004410 Ceased WO2018079960A1 (fr) | 2016-10-25 | 2017-04-26 | Dispositif de mémorisation comprenant un secteur de démarrage dans lequel seul un propriétaire peut enregistrer |
Country Status (4)
| Country | Link |
|---|---|
| US (1) | US20190258589A1 (fr) |
| KR (1) | KR101886176B1 (fr) |
| CN (1) | CN109863480B (fr) |
| WO (1) | WO2018079960A1 (fr) |
Families Citing this family (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US10997297B1 (en) * | 2019-12-06 | 2021-05-04 | Western Digital Technologies, Inc. | Validating firmware for data storage devices |
Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR20060117143A (ko) * | 2005-05-13 | 2006-11-16 | 엘지전자 주식회사 | 컴퓨터 시스템의 안전 부팅 장치 및 방법 |
| WO2012153954A2 (fr) * | 2011-05-11 | 2012-11-15 | 주식회사 씽크풀 | Système numérique et son procédé de fourniture |
| KR20130101646A (ko) * | 2012-02-22 | 2013-09-16 | 주식회사 팬택 | 휴대용 단말의 메모리 보안 시스템 |
| WO2015102220A1 (fr) * | 2013-12-31 | 2015-07-09 | 권용구 | Système de stockage ayant un dispositif de stockage de sécurité et procédé de gestion correspondant |
| US9202059B2 (en) * | 2011-03-01 | 2015-12-01 | Apurva M. Bhansali | Methods, systems, and apparatuses for managing a hard drive security system |
Family Cites Families (33)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| JP2001209543A (ja) * | 2000-01-28 | 2001-08-03 | Nec Ic Microcomput Syst Ltd | フラッシュ・マイコンにおけるプログラム書き換え方法 |
| US20020124170A1 (en) * | 2001-03-02 | 2002-09-05 | Johnson William S. | Secure content system and method |
| KR100849296B1 (ko) * | 2003-06-13 | 2008-07-29 | 삼성전자주식회사 | 주제어부와 보조제어부를 구비하는 시스템에서의보조제어부의 초기화 장치 및 방법 |
| KR100703357B1 (ko) * | 2003-08-16 | 2007-04-03 | 삼성전자주식회사 | 보조제어부를 구비하는 휴대용 단말기의 캐시메모리구현장치 및 방법 |
| US20110066920A1 (en) * | 2003-12-02 | 2011-03-17 | Super Talent Electronics Inc. | Single-Chip Multi-Media Card/Secure Digital (MMC/SD) Controller Reading Power-On Boot Code from Integrated Flash Memory for User Storage |
| JP4064914B2 (ja) * | 2003-12-02 | 2008-03-19 | インターナショナル・ビジネス・マシーンズ・コーポレーション | 情報処理装置、サーバ装置、情報処理装置のための方法、サーバ装置のための方法および装置実行可能なプログラム |
| US7594135B2 (en) * | 2003-12-31 | 2009-09-22 | Sandisk Corporation | Flash memory system startup operation |
| KR20070060101A (ko) * | 2004-08-30 | 2007-06-12 | 실리콘 스토리지 테크놀로지 인크 | 무선 단말기에서의 비휘발성 메모리 관리 시스템 및 방법 |
| US20060136705A1 (en) * | 2004-12-21 | 2006-06-22 | Motorola, Inc. | Multiple stage software verification |
| JP4245585B2 (ja) * | 2005-06-13 | 2009-03-25 | Tdk株式会社 | メモリコントローラ、フラッシュメモリシステム及びフラッシュメモリの制御方法 |
| US8291226B2 (en) * | 2006-02-10 | 2012-10-16 | Qualcomm Incorporated | Method and apparatus for securely booting from an external storage device |
| JP2007219883A (ja) * | 2006-02-17 | 2007-08-30 | Sony Ericsson Mobilecommunications Japan Inc | 移動端末装置およびソフトウェア更新方法 |
| TWI327290B (en) * | 2006-10-03 | 2010-07-11 | Magic Pixel Inc | Electronic system with nand flash memory storing boot code and a highly reliable boot up method |
| JP2008134736A (ja) * | 2006-11-27 | 2008-06-12 | Fujifilm Corp | 電子機器 |
| US8560823B1 (en) * | 2007-04-24 | 2013-10-15 | Marvell International Ltd. | Trusted modular firmware update using digital certificate |
| US8312247B2 (en) * | 2008-06-20 | 2012-11-13 | Panasonic Corporation | Plural-partitioned type nonvolatile storage device and system |
| KR20100041309A (ko) * | 2008-10-14 | 2010-04-22 | 삼성전자주식회사 | 각 프로세서들의 어플리케이션 기능을 모두 활용 가능한 멀티 프로세서 시스템 |
| US20100106957A1 (en) * | 2008-10-27 | 2010-04-29 | Lennox Industries Inc. | Programming and configuration in a heating, ventilation and air conditioning network |
| JP5485163B2 (ja) * | 2009-03-13 | 2014-05-07 | パナソニック株式会社 | アクセスモジュール、情報記録モジュール、コントローラ、及び情報記録システム |
| KR101539778B1 (ko) * | 2009-06-17 | 2015-07-27 | 엘지전자 주식회사 | 부팅 중에 사용자에게 정보를 제공할 수 있는 디스플레이 장치 및 그 구동 방법 |
| JP5537149B2 (ja) * | 2009-12-25 | 2014-07-02 | キヤノン株式会社 | 画像処理装置及びその制御方法、並びにプログラム |
| GB2477774A (en) * | 2010-02-12 | 2011-08-17 | Icera Inc | Overriding production processor authentication restrictions through remote security unit for development code testing |
| US8484474B2 (en) * | 2010-07-01 | 2013-07-09 | Rockwell Automation Technologies, Inc. | Methods for firmware signature |
| US9147074B2 (en) * | 2011-05-24 | 2015-09-29 | Cisco Technology, Inc. | Method and apparatus for securing CPUS booted using attached flash memory devices |
| EP2792104B1 (fr) * | 2011-12-21 | 2021-06-30 | SSH Communications Security Oyj | Gestion d'accès automatisé, de clé, de certificat et de justificatif d'identité |
| CN103902461A (zh) * | 2012-12-27 | 2014-07-02 | 中兴通讯股份有限公司 | 不同Nand闪存兼容方法及装置 |
| CN104077154A (zh) * | 2013-03-28 | 2014-10-01 | 鸿富锦精密工业(深圳)有限公司 | 电子产品的操作系统的快速安装方法 |
| JP2015022516A (ja) * | 2013-07-19 | 2015-02-02 | ソニー株式会社 | 記憶制御装置、記憶装置、情報処理システムおよび記憶制御方法 |
| US20150074489A1 (en) * | 2013-09-06 | 2015-03-12 | Kabushiki Kaisha Toshiba | Semiconductor storage device and memory system |
| KR102340230B1 (ko) * | 2015-01-16 | 2021-12-16 | 엘지전자 주식회사 | 두 디바이스 간 근거리 통신을 자동으로 연결하는 방법 및 이를 위한 장치 |
| US9710651B2 (en) * | 2015-04-10 | 2017-07-18 | Vixs Systems Inc. | Secure processor for SoC initialization |
| US10140055B2 (en) * | 2015-12-21 | 2018-11-27 | Memory Technologies Llc | Ensuring that memory device actions are valid using reference values |
| US10223531B2 (en) * | 2016-12-30 | 2019-03-05 | Google Llc | Secure device state apparatus and method and lifecycle management |
-
2016
- 2016-10-25 KR KR1020160139524A patent/KR101886176B1/ko active Active
-
2017
- 2017-04-26 WO PCT/KR2017/004410 patent/WO2018079960A1/fr not_active Ceased
- 2017-04-26 US US16/344,895 patent/US20190258589A1/en not_active Abandoned
- 2017-04-26 CN CN201780065569.8A patent/CN109863480B/zh active Active
Patent Citations (5)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| KR20060117143A (ko) * | 2005-05-13 | 2006-11-16 | 엘지전자 주식회사 | 컴퓨터 시스템의 안전 부팅 장치 및 방법 |
| US9202059B2 (en) * | 2011-03-01 | 2015-12-01 | Apurva M. Bhansali | Methods, systems, and apparatuses for managing a hard drive security system |
| WO2012153954A2 (fr) * | 2011-05-11 | 2012-11-15 | 주식회사 씽크풀 | Système numérique et son procédé de fourniture |
| KR20130101646A (ko) * | 2012-02-22 | 2013-09-16 | 주식회사 팬택 | 휴대용 단말의 메모리 보안 시스템 |
| WO2015102220A1 (fr) * | 2013-12-31 | 2015-07-09 | 권용구 | Système de stockage ayant un dispositif de stockage de sécurité et procédé de gestion correspondant |
Also Published As
| Publication number | Publication date |
|---|---|
| KR20180045432A (ko) | 2018-05-04 |
| US20190258589A1 (en) | 2019-08-22 |
| CN109863480B (zh) | 2023-11-21 |
| KR101886176B1 (ko) | 2018-08-08 |
| CN109863480A (zh) | 2019-06-07 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| KR101699998B1 (ko) | 일시적 중요정보의 보안 저장 | |
| US8302178B2 (en) | System and method for a dynamic policies enforced file system for a data storage device | |
| JP5565040B2 (ja) | 記憶装置、データ処理装置、登録方法、及びコンピュータプログラム | |
| EP1365306A2 (fr) | Système de protection de données | |
| KR20120104175A (ko) | 일회기록 다회판독 메모리 장치의 인증 및 보안 | |
| TWI711940B (zh) | 用於資料儲存設備的安全快照管理的裝置、系統、及方法 | |
| CN103765429B (zh) | 数字签名机构相关的平台秘密 | |
| JP2005011151A (ja) | メモリカード | |
| US20130191636A1 (en) | Storage device, host device, and information processing method | |
| JP2012515959A (ja) | 多重認証処理機能を有する着脱可能メモリ格納装置 | |
| CN101840472A (zh) | 外部存储装置及其控制方法 | |
| KR20210130240A (ko) | 암호화 해시를 사용하여 메모리에 저장된 데이터 검정 | |
| US20160004859A1 (en) | Method and system for platform and user application security on a device | |
| Tetmeyer et al. | Security threats and mitigating risk for USB devices | |
| US9003201B2 (en) | Hardware protection for encrypted strings and protection of security parameters | |
| KR100661894B1 (ko) | 서브시스템 장치를 마더보드에 바인딩하는 방법 및 구조물 | |
| WO2018079960A1 (fr) | Dispositif de mémorisation comprenant un secteur de démarrage dans lequel seul un propriétaire peut enregistrer | |
| JP5537477B2 (ja) | 可搬記憶媒体 | |
| JP7077872B2 (ja) | 情報処理装置、情報処理方法、およびプログラム | |
| US20130117550A1 (en) | Accessing secure volumes | |
| KR20160141462A (ko) | 단말의 보안 데이터 관리 장치 및 그 방법 | |
| CN111125723A (zh) | 加密卡识别方法、装置、设备及存储介质 | |
| ES2826551T3 (es) | Protección de software | |
| US20130173851A1 (en) | Non-volatile storage device, access control program, and storage control method | |
| JP2021149547A (ja) | 記憶装置および制御方法 |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 17865387 Country of ref document: EP Kind code of ref document: A1 |
|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 32PN | Ep: public notification in the ep bulletin as address of the adressee cannot be established |
Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205A DATED 22.08.2019) |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 17865387 Country of ref document: EP Kind code of ref document: A1 |